ConfirmedData breach

Abrigo: a data breach

In April 2026, the fintech software company Abrigo was targeted in a "pay or leak" extortion attempt by the ShinyHunters group . Shortly after, data allegedly taken from the company's Salesforce instance was published publicly and contained over 700k unique email addresses belonging to both Abrigo staff and external contacts. Whilst separate from Abrigo's Salesforce compromise via the Drift application connector the previous year , the data fields described in that incident are consistent with the ShinyHunters data, namely that it was "business contact information" including "institution name, employee name, email addresses, and phone numbers".

The record

Organisation
Abrigo
Identity
Abrigoidentified by its domain in a verified breach record
Records affected
711,099 records
Data exposed
Email addresses, Employers, Job titles, Names, Phone numbers, Physical addresses
Sector
Not recorded
Occurred
2026-04-14
Disclosed
2026-05-14
First recorded here
2026-09-09

Sources (1)

One source so far.

  1. Have I Been PwnedFirst reported

    2026-05-14

Abrigo: a data breach | NexaPulse